Skip to content
Noroxi

preprojects records

29 published records for vendor preprojects.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
18
With a fix record
0%
Median publish → KEV
No record has entered KEV

All records

29 records
  • CVE-2008-6231
    31Monitor

    Pre Classified Listing PHP allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and

    HighCVSS 7.5Proof of conceptEPSS 3%

    preprojects · pre classified listingsFeb 20, 2009

  • CVE-2008-6232
    31Monitor

    Pre Shopping Mall allows remote attackers to bypass authentication and gain administrative access by setting the (1) adminname and the (2) a

    HighCVSS 7.5Proof of conceptEPSS 3%

    preprojects · pre shopping mallFeb 20, 2009

  • CVE-2008-6716
    31Monitor

    homeadmin/adminhome.php in Pre ADS Portal 2.0 and earlier does not require administrative authentication, which allows remote attackers to h

    HighCVSS 7.5Proof of conceptEPSS 2%

    preprojects · pre ads portalApr 13, 2009

  • CVE-2008-2917
    31Monitor

    SQL injection vulnerability in productsofcat.asp in E-SMART CART allows remote attackers to execute arbitrary SQL commands via the category_

    HighCVSS 7.5Proof of conceptEPSS 2%

    preprojects · e-smart cartJun 30, 2008

  • CVE-2010-0954
    30Monitor

    SQL injection vulnerability in search_result.asp in Pre Projects Pre E-Learning Portal allows remote attackers to execute arbitrary SQL comm

    HighCVSS 7.5No exploitEPSS 1%

    preprojects · pre e-learning portalMar 10, 2010

  • CVE-2012-5334
    30Monitor

    SQL injection vulnerability in product_desc.php in Pre Printing Press allows remote attackers to execute arbitrary SQL commands via the pid

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · pre printing pressOct 8, 2012

  • CVE-2012-5333
    30Monitor

    SQL injection vulnerability in page.php in Pre Printing Press allows remote attackers to execute arbitrary SQL commands via the id parameter

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · pre printing pressOct 8, 2012

  • CVE-2010-1370
    30Monitor

    SQL injection vulnerability in detailad.asp in Pre Classified Listings ASP allows remote attackers to execute arbitrary SQL commands via the

    HighCVSS 7.5No exploitEPSS 1%

    preprojects · pre classified listings aspApr 13, 2010

  • CVE-2011-5139
    30Monitor

    SQL injection vulnerability in page.php in Pre Studio Business Cards Designer allows remote attackers to execute arbitrary SQL commands via

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · business cards designerAug 31, 2012

  • CVE-2008-2915
    30Monitor

    Multiple SQL injection vulnerabilities in jobseekers/JobSearch.php (aka the search module) in Pre Job Board allow remote attackers to execut

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · pre job boardJun 30, 2008

  • CVE-2008-6230
    30Monitor

    SQL injection vulnerability in Tour.php in Pre Projects Pre Podcast Portal allows remote attackers to execute arbitrary SQL commands via the

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · pre podcast portalFeb 20, 2009

  • CVE-2008-2914
    30Monitor

    SQL injection vulnerability in jobseekers/JobSearch3.php (aka the search module) in PHP JOBWEBSITE PRO allows remote attackers to execute ar

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · php jobwebsite proJun 30, 2008

  • CVE-2008-6887
    30Monitor

    SQL injection vulnerability in detailad.asp in Pre Classified Listings 1.0 allows remote attackers to execute arbitrary SQL commands via the

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · pre classified listingsAug 3, 2009

  • CVE-2010-4776
    30Monitor

    SQL injection vulnerability in takefreestart.php in PreProjects Pre Online Tests Generator Pro allows remote attackers to execute arbitrary

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · pre online tests generatorMar 23, 2011

  • CVE-2008-6796
    30Monitor

    SQL injection vulnerability in manager/login.php in Pre Projects Pre Real Estate Listings allows remote attackers to execute arbitrary SQL c

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · pre real estate listingsMay 7, 2009

  • CVE-2010-1369
    30Monitor

    SQL injection vulnerability in signup.asp in Pre Classified Listings ASP allows remote attackers to execute arbitrary SQL commands via the e

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · pre classified listings aspApr 13, 2010

  • CVE-2008-2114
    30Monitor

    SQL injection vulnerability in emall/search.php in Pre Shopping Mall 1.1 allows remote attackers to execute arbitrary SQL commands via the s

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · pre shopping mallMay 8, 2008

  • CVE-2008-4177
    30Monitor

    SQL injection vulnerability in search.php in Pre Real Estate Listings allows remote attackers to execute arbitrary SQL commands via the c pa

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · pre real estate listingsSep 23, 2008

  • CVE-2008-5977
    30Monitor

    SQL injection vulnerability in siteadmin/forgot.php in PHP JOBWEBSITE PRO allows remote attackers to execute arbitrary SQL commands via the

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · php jobwebsite proJan 26, 2009

  • CVE-2008-6798
    30Monitor

    Multiple SQL injection vulnerabilities in login.php in Pre Projects Pre Real Estate Listings allow remote attackers to execute arbitrary SQL

    HighCVSS 7.5Proof of conceptEPSS 1%

    preprojects · pre real estate listingsMay 7, 2009

  • CVE-2008-7052
    27Monitor

    Unrestricted file upload vulnerability in profile.php in Pre Projects Pre Real Estate Listings allows remote authenticated users to execute

    MediumCVSS 6.5Proof of conceptEPSS 3%

    preprojects · pre real estate listingsAug 24, 2009

  • CVE-2008-2916
    27Monitor

    Multiple SQL injection vulnerabilities in Pre ADS Portal 2.0 and earlier, when magic_quotes_gpc is disabled, allow remote attackers to execu

    MediumCVSS 6.8Proof of conceptEPSS 1%

    preprojects · pre ads portalJun 30, 2008

  • CVE-2008-6053
    20Monitor

    PreProjects Pre Resume Submitter stores onlineresume.mdb under the web root with insufficient access control, which allows remote attackers

    MediumCVSS 5.0No exploitEPSS 1%

    preprojects · pre resume submitterFeb 4, 2009

  • CVE-2008-6052
    20Monitor

    PreProjects Pre E-Learning Portal stores db_elearning.mdb under the web root with insufficient access control, which allows remote attackers

    MediumCVSS 5.0No exploitEPSS 1%

    preprojects · pre e-learning portalFeb 4, 2009

  • CVE-2008-6055
    20Monitor

    PreProjects Pre Classified Listings stores pclasp.mdb under the web root with insufficient access control, which allows remote attackers to

    MediumCVSS 5.0No exploitEPSS 1%

    preprojects · pre classified listingsFeb 4, 2009